Описание
A library injection vulnerability exists in Microsoft Excel 16.83 for macOS. A specially crafted library can leverage Excel's access privileges, leading to a permission bypass. A malicious application could inject a library and start the program to trigger this vulnerability and then make use of the vulnerable application's permissions.
Ссылки
- ExploitThird Party Advisory
- ExploitThird Party Advisory
- ExploitThird Party Advisory
Уязвимые конфигурации
EPSS
7.1 High
CVSS3
9.1 Critical
CVSS3
Дефекты
Связанные уязвимости
A library injection vulnerability exists in Microsoft Excel 16.83 for macOS. A specially crafted library can leverage Excel's access privileges, leading to a permission bypass. A malicious application could inject a library and start the program to trigger this vulnerability and then make use of the vulnerable application's permissions.
Уязвимость редактора электронных таблиц Microsoft Excel операционной системы Mac OS, связанная с ошибками проверки криптографической подписи, позволяющая нарушителю повысить свои привилегии
EPSS
7.1 High
CVSS3
9.1 Critical
CVSS3